Vulnerabilities > Zoom > Zoom > 4.0.25926.0306

DATE CVE VULNERABILITY TITLE RISK
2023-09-12 CVE-2023-39215 Improper Authentication vulnerability in Zoom Meeting Software Development KIT and Zoom
Improper authentication in Zoom clients may allow an authenticated user to conduct a denial of service via network access.
network
low complexity
zoom CWE-287
6.5
2023-08-08 CVE-2023-39214 Exposure of Resource to Wrong Sphere vulnerability in Zoom Meeting Software Development Kit, Rooms and Zoom
Exposure of sensitive information in Zoom Client SDK's before 5.15.5 may allow an authenticated user to enable a denial of service via network access.
network
low complexity
zoom CWE-668
8.1
2023-08-08 CVE-2023-36532 Out-of-bounds Write vulnerability in Zoom Rooms and Zoom
Buffer overflow in Zoom Clients before 5.14.5 may allow an unauthenticated user to enable a denial of service via network access.
network
low complexity
zoom CWE-787
7.5
2023-08-08 CVE-2023-36535 Unspecified vulnerability in Zoom
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network access.
network
low complexity
zoom
6.5
2023-08-08 CVE-2023-39218 Unspecified vulnerability in Zoom
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow a privileged user to enable information disclosure via network access.
network
low complexity
zoom
4.9
2023-06-13 CVE-2023-34114 Exposure of Resource to Wrong Sphere vulnerability in Zoom
Exposure of resource to wrong sphere in Zoom for Windows and Zoom for MacOS clients before 5.14.10 may allow an authenticated user to potentially enable information disclosure via network access.
network
low complexity
zoom CWE-668
6.5
2023-06-13 CVE-2023-28600 Unspecified vulnerability in Zoom
Zoom for MacOSclients prior to 5.14.0 contain an improper access control vulnerability.
network
low complexity
zoom
5.4
2023-06-13 CVE-2023-28599 Injection vulnerability in Zoom
Zoom clients prior to 5.13.10 contain an HTML injection vulnerability.
network
low complexity
zoom CWE-74
4.3
2023-03-27 CVE-2023-28597 Unspecified vulnerability in Zoom Rooms and Zoom
Zoom clients prior to 5.13.5 contain an improper trust boundary implementation vulnerability.
high complexity
zoom
7.5
2023-03-16 CVE-2023-22881 Unspecified vulnerability in Zoom
Zoom clients before version 5.13.5 contain a STUN parsing vulnerability.
network
low complexity
zoom
7.5